VYPR

Aix

by IBM

CVEs (554)

  • CVE-2000-1121Jan 9, 2001
    risk 0.03cvss —epss 0.01

    Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long -M argument.

  • CVE-2000-1120Jan 9, 2001
    risk 0.03cvss —epss 0.01

    Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands.

  • CVE-2000-0873Nov 14, 2000
    risk 0.03cvss —epss 0.01

    netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.

  • CVE-1999-0693Mar 2, 2000
    risk 0.03cvss —epss 0.01

    Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.

  • CVE-1999-1117Dec 31, 1999
    risk 0.03cvss —epss 0.01

    lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line parameter.

  • CVE-1999-0789Sep 28, 1999
    risk 0.03cvss —epss 0.03

    Buffer overflow in AIX ftpd in the libc library.

  • CVE-1999-0691Sep 13, 1999
    risk 0.03cvss —epss 0.01

    Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.

  • CVE-1999-0745Aug 18, 1999
    risk 0.03cvss —epss 0.03

    Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.

  • CVE-1999-1405Feb 17, 1999
    risk 0.03cvss —epss 0.03

    snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd…

  • CVE-1999-0118Nov 1, 1998
    risk 0.03cvss —epss 0.01

    AIX infod allows local users to gain root access through an X display.

  • CVE-1999-0014Jan 21, 1998
    risk 0.03cvss —epss 0.01

    Unauthorized privileged access or denial of service via dtappgather program in CDE.

  • CVE-1999-0092Oct 29, 1997
    risk 0.03cvss —epss 0.01

    Various vulnerabilities in the AIX portmir command allows local users to obtain root access.

  • CVE-1999-0115Sep 1, 1997
    risk 0.03cvss —epss 0.01

    AIX bugfiler program allows local users to gain root access.

  • CVE-1999-0122Jul 21, 1997
    risk 0.03cvss —epss 0.01

    Buffer overflow in AIX lchangelv gives root access.

  • CVE-1999-1208Jul 21, 1997
    risk 0.03cvss —epss 0.01

    Buffer overflow in ping in AIX 4.2 and earlier allows local users to gain root privileges via a long command line argument.

  • CVE-1999-0064May 26, 1997
    risk 0.03cvss —epss 0.01

    Buffer overflow in AIX lquerylv program gives root access to local users.

  • CVE-1999-0112May 1, 1997
    risk 0.03cvss —epss 0.01

    Buffer overflow in AIX dtterm program for the CDE.

  • CVE-1999-0040May 1, 1997
    risk 0.03cvss —epss 0.01

    Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.

  • CVE-1999-1408Mar 5, 1997
    risk 0.03cvss —epss 0.01

    Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a socket to connect to a port on the localhost, calling shutdown to clear the socket, then using the same socket to connect to a different port on localhost.

  • CVE-1999-0130Nov 16, 1996
    risk 0.03cvss —epss 0.01

    Local users can start Sendmail in daemon mode and gain root privileges.

Page 15 of 28